Launchpad.net

CVE 2016-11082

An issue was discovered in Mattermost Server before 2.2.0. It allows XSS via a crafted link.

See the CVE page on Mitre.org for more details.

References